[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Planning for Disk Encryption



On Thu, 02 May 2013 09:19:32 +0200, tv.debian@googlemail.com wrote:

>>So, what would you plan for normal home users on disk failure for Disk
>>Encryption? How to cope with it?
> 
> 
> Hi, I guess what you are referring to can happen if you get bad sectors
> where the luks header resides. This is a single point of failure in luks
> whole disk encryption, to plan for this you must have current backups
> (but most likely on another encrypted media, so there is always a tiny
> probability that this is going to happen there too), and backup the luks
> headers (see command "cryptsetup luksHeaderBackup"). See cryptsetup man
> for security good practice regarding the headers backups.

Thanks a lot for your insightful and contributing reply. 



Reply to: